CVE Tools

Lopalopa

109 CVEs tracked since 2024. Since May 2024, none of them reached CISA KEV.

Lopalopa CVEs per month

May 2024 to May 2025. Point at a month, or focus the strip and use the arrow keys.
Lopalopa CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2024-05210
2024-06null or fewer
2024-07null or fewer
2024-08380
2024-0950
2024-10null or fewer
2024-11200
2024-12210
2025-01null or fewer
2025-02null or fewer
2025-03null or fewer
2025-04null or fewer
2025-0540

Products

The products that kept showing up in Lopalopa's monthly top three, with their CVEs summed over those months.

  1. E-learning Management System412 months
  2. Music Management System222 months
  3. College Management System211 month
  4. Responsive School Management System171 month
  5. Live Membership System41 month
  6. Online Service Management Portal31 month
  7. Responsive Online Learing Platform11 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Lopalopa.

  1. CVE-2025-5214Kashipara Responsive Online Learing Platform course_detail_user_new.php sql injection7.3
  2. CVE-2025-45321kashipara Online Service Management Portal V1.0 is vulnerable to SQL Injection in /osms/Requester/Requesterchangepass.php via the parameter: rPassword.8.8
  3. CVE-2025-45322kashipara Online Service Management Portal V1.0 is vulnerable to SQL Injection in osms/Requester/CheckStatus.php via the checkid parameter.8.8
  4. CVE-2025-45320A Directory Listing Vulnerability was found in the /osms/Requester/ directory of the Kashipara Online Service Management Portal V1.0.5.3
  5. CVE-2024-54935A Stored Cross-Site Scripting (XSS) vulnerability was found in /send_message_teacher_to_student.php of kashipara E-learning Management System v1.0. This vulnerability allows remote attackers to exe...5.4
  6. CVE-2024-54920A SQL Injection vulnerability was found in /teacher_signup.php of kashipara E-learning Management System v1.0, which allows remote attackers to execute arbitrary SQL command to get unauthorized dat...9.8
  7. CVE-2024-54930Kashipara E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_student.php.7.2
  8. CVE-2024-54928kashipara E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_teacher.php,7.2
  9. CVE-2024-54931A SQL Injection was found in /admin/delete_event.php in kashipara E-learning Management System v1.0, which allows remote attackers to execute arbitrary SQL commands to get unauthorized database acc...9.8
  10. CVE-2024-54933Kashipara E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_content.php.7.2
  11. CVE-2024-54929KASHIPARA E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_subject.php.7.2
  12. CVE-2024-54918Kashipara E-learning Management System v1.0 is vulnerable to Remote Code Execution via File Upload in /teacher_avatar.php.9.8
  13. CVE-2024-54922A SQL Injection was found in /admin/edit_user.php of kashipara E-learning Management System v1.0, which allows remote attackers to execute arbitrary SQL commands to get unauthorized database access...7.2
  14. CVE-2024-54924A SQL Injection was found in /admin/edit_content.php in kashipara E-learning Management System v1.0, which allows remote attackers to execute arbitrary SQL commands to get unauthorized database acc...9.8
  15. CVE-2024-54938A Directory Listing issue was found in Kashipara E-Learning Management System v1.0, which allows remote attackers to access sensitive files and directories via /admin/uploads.7.5

The record

Peak rank
#24 in Aug 2024
Busiest month shown
Aug 2024, 38 CVEs
Months with a KEV entry
0 since May 2024
Monthly snapshots
6 since 2024
Lopalopa's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store